Attempts to perform a dynamic DNS update without authentication.
test or both the
ip script arguments are required. Note that the
function will probably fail due to using a static zone name that is not the
zone configured on your target.
Add and remove 4 records to determine if the target is vulnerable.
The ip address of the host to add to the zone
The name of the host to add to the zone
nmap -sU -p 53 --script=dns-update --script-args=dns-update.hostname=foo.example.com,dns-update.ip=192.0.2.1 <target>
PORT STATE SERVICE 53/udp open domain | dns-update: | Successfully added the record "nmap-test.cqure.net" |_ Successfully deleted the record "nmap-test.cqure.net"
Author: Patrik Karlsson
License: Same as Nmap--See https://nmap.org/book/man-legal.html